From: christopher <ch...@sy...> - 2005-05-04 06:06:02
|
Dear Ken, snort_inline certainly suitable for production used. just the matter of the rules update only need to purchase from snort. On Tue, 2005-05-03 at 21:53 +0700, Ken Hilliard wrote: > I found your project on the ClamAV website. What I’d like to know is > what are the general limitations using this type of scheme for anit- > virus protection for LAN workstations behind the firewall? For > example, when using a web proxy anti-virus solution the software must > completely buffer long web file downloads before it can do virus > scanning. I don’t see how this could be done using iptables were you > have to “vote” on a packet-by-packet basis. Secondly, is the current > inline snort version suitable for production use? > > > > > Thx, Ken > > -- Christopher Chong Chew Vun Enterprise Deployment Team SYNCHROWEB TECHNOLOGY SDN BHD (670983D) Unit No. CT-05-12, 5th Floor Corporate Tower, Subang Square, Jln SS 15/ 4G Subang Jaya, Selangor D. Ehsan, Malaysia. T. +[60]3 5621 9028 F. +[60]3 5621 8802 HP. +[60]12 3247432 |